CVE-2025-10158: Rsync: Out of bounds array access via negative index
A malicious client acting as the receiver of an rsync file transfer can trigger an out of bounds read of a heap based buffer, via a negative array index. The
Other sources
Rsync: Out of bounds array access via negative index
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/rsyncto a version that resolves this vulnerability.Fixed in 3.2.7-1+deb12u4Fixed in 3.2.7-1+deb12u5Fixed in 3.4.1+ds1-5+deb13u2Fixed in 3.4.1+ds1-5+deb13u3Fixed in 3.4.3+ds1-2
Event History
Frequently Asked Questions
What is the severity of CVE-2025-10158?
CVE-2025-10158 has a moderate severity level due to the potential for an out of bounds read.
How do I fix CVE-2025-10158?
To fix CVE-2025-10158, update to the latest version of Rsync that addresses this vulnerability.
What are the potential impacts of CVE-2025-10158?
The potential impacts of CVE-2025-10158 include unauthorized access to memory and possible data leakage.
Who is affected by CVE-2025-10158?
Users of Rsync who allow remote file access through rsync modules are affected by CVE-2025-10158.
How is CVE-2025-10158 exploited?
CVE-2025-10158 can be exploited by a malicious client using a negative array index during an rsync file transfer.